Senior Infra Engineer - Security
Job Description:
Job DescriptionDXC Technology (NYSE:DXC) - where brilliant people embrace change and seize opportunities to advance their careers and amplify customer success. People are the heart of our business. We support each other and work as a team, globally and locally to deliver excellence for our customers and colleagues. We live in more than 70 countries, speak multiple languages and work with over 6,000 customers on almost every continent. We use the power of technology to deliver mission critical IT services that move the world. DXC.com At DXC we pride ourselves on delivering excellence in everything we do. What this means for you is the opportunity to be a part of delivering innovative solutions and helping to solve real business problems for a wide variety of valued clients.
Posting Title: Senior Consultant
Job Description
We are seeking an experienced Security Consultant with a minimum of 5 years of professional experience in information security, cybersecurity consulting, or governance, risk, and compliance (GRC). The ideal candidate will have a strong background in conducting security assessments, security audits, and risk evaluations, particularly within the public sector. Experience supporting government agencies, such as the Ministry of Home Affairs (MHA) or other government organizations, will be highly advantageous.
The Security Consultant will work closely with clients and project teams to assess security risks, ensure compliance with applicable security standards and regulatory requirements, and provide practical recommendations to strengthen cybersecurity posture.
Job Description:
Summary
We are seeking an experienced Security Consultant with a minimum of 5 years of professional experience in information security, cybersecurity consulting, or governance, risk, and compliance (GRC). The ideal candidate will have a strong background in conducting security assessments, security audits, and risk evaluations, particularly within the public sector. Experience supporting government agencies, such as the Ministry of Home Affairs (MHA) or other government organizations, will be highly advantageous.
The Security Consultant will work closely with clients and project teams to assess security risks, ensure compliance with applicable security standards and regulatory requirements, and provide practical recommendations to strengthen cybersecurity posture.
Key Responsibilities
- Conduct comprehensive security assessments, including technical and governance-based security reviews, to identify risks and security gaps.
- Plan and execute security audits against organizational policies, regulatory requirements, and industry best practices.
- Perform cybersecurity risk assessments and develop risk treatment recommendations aligned with business and regulatory objectives.
- Review security architectures, system designs, and technology implementations to ensure compliance with security requirements.
- Develop security assessment reports, audit findings, executive summaries, and remediation recommendations for stakeholders.
- Support clients in implementing security controls and improving their overall security governance framework.
- Provide advisory services on cybersecurity policies, standards, and security best practices.
- Collaborate with project managers, technical teams, and client stakeholders throughout the project lifecycle to ensure security requirements are incorporated into solution delivery.
- Participate in security compliance initiatives, including readiness assessments and certification exercises where applicable.
- Stay updated on emerging cybersecurity threats, regulatory changes, and industry standards to provide informed recommendations.
Requirements
Mandatory
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related discipline.
- Minimum 5 years of relevant experience in cybersecurity consulting, information security, or GRC.
- Proven experience conducting:
- Security assessments
- Security audits
- Cybersecurity risk assessments
- Security compliance reviews
- Experience working on public sector or government projects, preferably with agencies such as the Ministry of Home Affairs (MHA) or other government organizations.
- Strong understanding of information security frameworks and standards such as:
- ISO/IEC 27001
- NIST Cybersecurity Framework
- CIS Controls
- Government security standards and compliance requirements
- Strong analytical, documentation, and report-writing skills.
- Excellent communication and stakeholder management abilities.
Preferred
- Professional certifications such as:
- Certified Information Security Manager (CISM)
- Certified Information Systems Auditor (CISA)
- Certified in Risk and Information Systems Control (CRISC)
- Experience supporting government cybersecurity compliance programmes and security governance initiatives.
- Familiarity with cloud security assessments and modern enterprise security architectures.
- Experience working in consulting or professional services environments.
Key Competencies
- Information Security Governance
- Security Risk Assessment
- Security Auditing
- Security Compliance
- Cybersecurity Advisory
- Security Architecture Review
- Risk Management
- Stakeholder Engagement
- Report Writing and Presentation
- Problem Solving and Critical Thinking
Preferred Candidate Profile
The successful candidate is a proactive cybersecurity professional with strong consulting and client engagement skills. They possess practical experience delivering security assessments and audits for public sector organizations, can effectively communicate security risks to both technical and non-technical stakeholders, and are capable of providing actionable recommendations that enhance clients' security posture while meeting regulatory and compliance requirements.
As an employer of choice, our “people first” philosophy means we offer competitive remuneration, benefits, training and career opportunities that reflect our commitment to improving the lives of our employees, and the communities in which we live and work. Some of these include.
Extensive resources to support your onboarding and continual development including DXC University
DXC Recognition, our global virtual platform that fosters a culture of appreciation and celebration with real-time reward and recognition
We know that great people refer great people. We will reward you when you bring your friends and family to work at DXC
More time to do the things you love with flexible leave options, including purchased leave
Take time to give back with charitable and emergency services volunteer days
Well-being matters to us and our Employee Assistance Program is there to support you and your family
Instagram: https://www.instagram.com/dxctechnology
Youtube: https://www.youtube.com/DXCTechnology
TikTok: https://www.tiktok.com/@dxc_technology
Website http://www.dxc.com
At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive.
Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.